[Webkit-unassigned] [Bug 16824] Script authorization should follow lexical (not dynamic) scope

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Thu Jan 10 15:11:32 PST 2008


http://bugs.webkit.org/show_bug.cgi?id=16824





------- Comment #4 from webkit at collinjackson.com  2008-01-10 15:11 PDT -------
> This is hard for web attackers to exploit because Safari prevents web sites
> from directing the browsers from file:// URLs. 

Oops. Typo. Safari prevents web sites from directing the browser *to* file://
URLs.


-- 
Configure bugmail: http://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.



More information about the webkit-unassigned mailing list